Metrics
Affected Vendors & Products
Wed, 28 May 2025 17:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Esafenet
Esafenet dsm |
|
CPEs | cpe:2.3:a:esafenet:dsm:3.1.2:*:*:*:*:*:*:* | |
Vendors & Products |
Esafenet
Esafenet dsm |
Tue, 04 Mar 2025 03:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 03 Mar 2025 02:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability has been found in ESAFENET DSM 3.1.2 and classified as critical. Affected by this vulnerability is the function examExportPDF of the file /admin/plan/examExportPDF. The manipulation of the argument s leads to command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | ESAFENET DSM examExportPDF command injection | |
Weaknesses | CWE-74 CWE-77 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-03-03T02:00:07.748Z
Updated: 2025-03-03T17:33:24.173Z
Reserved: 2025-03-02T15:39:46.887Z
Link: CVE-2025-1845

Updated: 2025-03-03T17:14:40.914Z

Status : Analyzed
Published: 2025-03-03T02:15:33.563
Modified: 2025-05-28T17:13:48.657
Link: CVE-2025-1845

No data.